naf-connect.com
HTML metadata
Technology
- Server
- nginx
- Ads
-
- Meta Pixel
Third-party hosts loaded (4)
- accounts.google.com×1
- cdn.optimizely.com×1
- connect.facebook.net×1
- js-agent.newrelic.com×1
Registration
- Registrar
- CSC Corporate Domains, Inc.
- Created
- 2019-01-30
- Expires
- 2030-01-30 1350 days left
- Updated
- 2024-07-25
- Name servers
-
- udns1.cscdns.net
- udns2.cscdns.uk
DNS records live
- NS
-
- udns1.cscdns.net
- udns2.cscdns.uk
- MX
-
- 0 nafconnect-com0i.mail.protection.outlook.com
- Verified for
-
Email authentication strong
- SPF
-
v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~allsoftfail (~all) - DMARC
-
v=DMARC1; p=reject; rua=mailto:dmarc_agg@vali.email,mailto:dmarcreport@nafinc.com; ruf=mailto:dmarcreport@nafinc.com; fo=1policy: reject (enforced) - DKIM
-
Show 4 DKIM selectors
- selector1:
v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCcbUmeOeU0idtECHxPCs9svUhlcMXW3szayVUyIyoQFzkals4x06sMB0TlW9hvCnFZ2+xNR6gT84cKoTTIrB… - selector2:
v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA4NVf5js0L945fmseA1sG0uBIXushf6Z8d1UtE9KHA+PB+prPOSlzEOMNEvZMN/cdWe9T9d5a+pAKfK… - s1:
k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnOaIgdCohlQoVgGWPhZgzhztg7HZKO0MwsziUil/rJC2qtRZgpR8xGYJfP9/u1shMMbDP6MRfbQjkq8yAr… - s2:
k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDk8Iw5Di1CQSf0QRI18j7OR+OvYov31vaybSMhtUkVi4bMgIMlfSSE2BbmxsHf1ZyiA6O+Mkk4xOcdGmmDCvWEW8…
selectors probed - selector1:
Certificate (current)
Corporation Service Company RSA DV SSL CA 2
Expires in 231 days
HTTP security headers
- present
-
- strict-transport-security
- content-security-policy
- x-content-type-options
- findings
-
- CSP allows unsafe inline scripts/styles
- CSP uses wildcard sources
- missing frame protection
- missing Referrer Policy
- missing Permissions Policy
Header values
- x-content-type-options
nosniff- content-security-policy
default-src 'self'; script-src 'self' https://accounts.google.com/gsi/client https://www.google-analytics.com https://connect.facebook.net/en_US/ https://edge.fullstory.com/ https://www.googletagmanager.com/ https://snap.licdn.com https://*.optimizely.com https://optimizely.s3.amazonaws.com https://cdn-assets-prod.s3.amazonaws.com https://js-agent.newrelic.com 'sha256-W59ED37m5bGfJqCxeoY4aq/8UJy+oi8orotjzkKwpQY=' 'sha256-OHaAmQtXrKXsLWYMS/a9/XHMngnAz0Tufz4FBGPnNGw=' 'sha256-FQSQziIS68NlOvsy5mUa+WcoNPRFE4yzw/L1pGBKIgA=' 'sha256-O7XwY+Dy89cYay552XbKwMPkBbtqFHsmtwjX2LKEAio='; style-src 'self' 'unsafe-inline'; img-src 'self' data: https://*.naf-connect.com https://*.naftech.io https://assets.newamericanfunding.com https://www.thebrokernetwork.com https://thebrokernetwork.com https://www.google-analytics.com https://cdn.optimizely.com https://px.ads.linkedin.com; media-src 'self' https://*.naf-connect.com; font-src 'self' data: https://*.naf-connect.com; connect-src 'self- strict-transport-security
max-age=31536000; includeSubDomains; preload